Enhancing Value While Reducing Risk with Third-Party Vendors
Although some of us may wish for simpler times, it would be nearly impossible for today’s health systems to be self-contained as they were in the past. Now that patients seek a more seamless and personalized care experience, hospitals need a way to meet their demand...
HIPAA Security Risk Analysis Best Practice Part 2
The scope of your SRA should include all IT assets that are involved in the creating, receiving, maintaining, or transmitting of e-PHI in your organization. HIPAA has been a big part of my working life since the Privacy Rule was finalized in August of 2002 and...
HIPAA Security Risk Analysis Best Practice Part 1
Completing your analysis in accordance with the OCR’s Guidance on Risk Analysis Requirements under the HIPAA Security Rule Per Section 164.308(a)(1)(ii)(A) of the HIPAA Security Rule, an organization must: Conduct an accurate and thorough assessment of the...